Category:Network: Difference between revisions
→VLAN 3: add coin acceptor |
|||
Line 307: | Line 307: | ||
| e7 || 4 || Able (VDSL Modem) | | e7 || 4 || Able (VDSL Modem) | ||
|- | |- | ||
| e8|| 1,2 || Data/Lore (WAP) | | e8|| 1,2,3 || Data/Lore (WAP) | ||
|- | |- | ||
| e9-e10 || 3 || [[HackSpace_Instrumentation|Instrumentation projects]] | | e9-e10 || 3 || [[HackSpace_Instrumentation|Instrumentation projects]] | ||
Line 316: | Line 316: | ||
|- | |- | ||
| e13+ || 2 || Main hackspace network | | e13+ || 2 || Main hackspace network | ||
|- | |||
| e15 || N || Do Not Use | |||
|- | |||
| e16 || 3 || [[HackSpace_Instrumentation|Instrumentation projects]] | |||
|- | |- | ||
| g1 || all || [[Collective]] | | g1 || all || [[Collective]] |
Revision as of 20:59, 31 May 2017
The hackspace network and servers are look after by the Network and Servers group
Network Layout
This page will show the network topology & proposals for network expansion / modification.
External IP address 79.77.188.139.
External domain address lspace.nottinghack.org.uk (DNS record looked after by 'RepRap' Matt)
Static & Reserved IP's
There are a few VLANs:
VLAN | Network | Description |
---|---|---|
1 | 192.168.1.0/24 | Default |
2 | 10.0.0.0/24 | Main Hackspace network |
3 | 192.168.0.0/24 | Instrumentation projects |
4 | - | Able / ADSL Modem (PPPoE) |
5 | 192.168.0.0/24 | Instrumentation test (Rommie) |
6 | 192.168.6.0/24 | Unimatrix<->Locutus direct network |
7 | 192.168.7.0/24 | Queen<->Unimatrix direct network |
8 | 192.168.8.0/24 | Queen<->Locutus direct network |
The following ranges are reserved for there given purpose:
Start | End | Purpose |
---|---|---|
10.0.0.1 | 10.0.0.1 | kryten The Main Router |
10.0.0.2 | 10.0.0.79 | Static things |
10.0.0.80 | 10.0.0.89 | openVPN DHCP pool |
10.0.0.90 | 10.0.0.99 | Static Printers |
10.0.0.100 | 10.0.0.254 | DHCP Range |
10.0.0.255 | 10.0.0.255 | Broadcast |
192.168.0.1 | 192.168.0.100 | Static HackSpace Instrumentation |
VLAN 1
These are all statically assigned.
VLAN | IP | DNS Name | Notes |
---|---|---|---|
1 | 192.168.1.1 | HollyVM | Our primary server hosing hms and instrumentation things |
1 | 192.168.1.2 | ws-switch | Workshop switch |
1 | 192.168.1.3 | Lore | Workshop Wifi AP |
1 | 192.168.1.4 | st-switch | Studio/BlueRoom switch |
1 | 192.168.1.5 | Data | Studio/BlueRoom Wifi AP |
1 | 192.168.1.6 | Gibson | Wifi RADIUS Server |
1 | 192.168.1.7 | studio-gbit | Dell PowerConnect 2724 (24x gbit) |
1 | 192.168.1.8 | Queeg | Hollys backup |
1 | 192.168.1.9 | Unimatrix | |
1 | 192.168.1.10 | Locutus | |
1 | 192.168.1.11 | Queen | |
1 | 192.168.1.12 | Holly (on Unimatrix)] |
VLAN 2
These are assigned via DHCP/MAC using Kryten or set statically on the device
VLAN | IP | DNS Name | Notes |
---|---|---|---|
2 | 10.0.0.1 | Kryten | pfSense router on Collective |
2 | 10.0.0.2 | HollyVM | Our primary server hosing hms and instrumentation things (Squeeze under KVM) |
2 | 10.0.0.4 | JARVIS | Sandbox Debian VM open for all members |
2 | 10.0.0.5 | Rommie | HMS Development VM |
2 | |||
2 | 10.0.0.11 | Samaritan | Monitoring server |
2 | 10.0.0.12 | Queeg | Hollys backup |
2 | 10.0.0.14 | Holly | Our primary server hosing hms and instrumentation things (Jessie under KVM) |
2 | 10.0.0.15 | Gibson | Wifi RADIUS Server |
2 | 10.0.0.17 | Unimatrix | |
2 | 10.0.0.18 | Locutus | |
2 | 10.0.0.19 | Queen | |
2 | 10.0.0.22 | Quorra | Quorra |
2 | 10.0.0.23 | Kiosk | Kiosk PC (under 50" screen in blueroom). WIP. |
2 | 10.0.0.24 | Bishop | Laptop for 3D printer |
2 | 10.0.0.25 | BarBot | Pi in Project:BarBot |
2 | 10.0.0.27 | pbx | Asterisk on bare metal |
2 | 10.0.0.28 | payphone | RaspberryPi in the Payphone |
2 | 10.0.0.40 | studiocam | Pan/Tilt Studio webcam |
2 | |||
2 | |||
2 | |||
2 | 10.0.0.93 | Vinyl | Vinyl |
2 | 10.0.0.94 | Rosey | Epson WF-7610DWF |
2 | 10.0.0.95 | Bender | HP5550 |
2 | 10.0.0.96 | Zebra_2844 | Label printer |
2 | 10.0.0.97 | Plotter | Plotter (HP DesignJet 600) |
(coming soon...)
VLAN 3
These are all statically assigned.
VLAN | IP | DNS Name | Notes |
---|---|---|---|
3 | 192.168.0.1 | Holly | Our primary server hosing hms and instrumentation things |
3 | 192.168.0.6 | HollyVM | OLD server. |
3 | 192.168.0.10 | gatekeeper | Access Control Arduino |
3 | 192.168.0.11 | MatrixMQTT | BIG LED Matrix Display Arduino |
3 | 192.168.0.12 | Vending Machine | RFID cashless payment nanode |
3 | 192.168.0.13 | Mini-matrix | Blue room mini-matrix display nanode |
3 | 192.168.0.15 | Studio Controller | Lighting Controller (Studio) |
3 | 192.168.0.16 | Workshop Controller | Lighting Controller (Workshop) |
3 | 192.168.0.17 | Studio Switch Panel | Lighting Switch's (Studio) |
3 | 192.168.0.18 | Workshop Switch Panel | Lighting Switch's (Workshop) |
3 | 192.168.0.19 | WorkshopMQTT | Workshop Bell and Temp Node |
3 | 192.168.0.20 | CoinAcceptor | Coin acceptor for Snackspace / Vending Machine payments |
3 | 192.168.0.21 | NoteAcceptor | Note acceptor for Snackspace / Vending Machine payments |
3 | 192.168.0.22 | laser | Laser RFID |
3 | 192.168.0.23 | 3D Printer | 3D Printer RFID |
3 | 192.168.0.24 | Laser Display | LED display near laser cutter |
3 | 192.168.0.25 | Queeg | Hollys backup |
3 | 192.168.0.26 | Embroidery Machine | Embroidery machine RIFD |
(coming soon...)
VLAN 6
Direct network between Unimatrix and Locutus used for HDD replication
These are all statically assigned.
VLAN | IP | DNS Name | Notes |
---|---|---|---|
6 | 192.168.6.1 | Unimatrix | |
6 | 192.168.6.2 | Locutus |
VLAN 7
Direct network between Unimatrix and Queen used for VM Backups
These are all statically assigned.
VLAN | IP | DNS Name | Notes |
---|---|---|---|
7 | 192.168.7.1 | Unimatrix | |
7 | 192.168.7.3 | Queen |
VLAN 8
Direct network between Locutus and Queen used for VM Backups
These are all statically assigned.
VLAN | IP | DNS Name | Notes |
---|---|---|---|
8 | 192.168.8.2 | Locutus | |
8 | 192.168.8.3 | Queen |
External Port Routing
Service | External Port | Internal Port | Internal IP | Notes |
---|---|---|---|---|
HTTP | 80 | 80 | 10.0.0.14 | Webserver on Holly |
HTTPS | 443 | 443 | 10.0.0.14 | HMS SSL Webserver on Holly |
SSH | 1922 | 22 | 10.0.0.18 | SSH on Unimatrix |
SSH | 3000 | 22 | 10.0.0.4 | SSH on JARVIS |
SSH | 3045 | 22 | 10.0.0.5 | SSH on Rommie |
RTP | 10000-20000 | 10000-20000 | 10.0.0.27 | Asterisk/RTP on PBX |
SIP | 5060 | 5060 | 10.0.0.27 | Asterisk/SIP on PBX |
Switch port assignments
Netgear Prosafe FS728x
The switch in the members storage room is a Netgear FS728TP (24x 100mbit with POE + 4x gbit ports), the switch in the workshop is FS728TS (same, but with no POE). As far as possible, both switches should have identical configuration; I.e. if the studio switch fails, the workshop switch should be a drop in replacement.
Port | VLAN | Comments |
---|---|---|
e1-e6 | 3 | Instrumentation projects |
e7 | 4 | Able (VDSL Modem) |
e8 | 1,2,3 | Data/Lore (WAP) |
e9-e10 | 3 | Instrumentation projects |
e11 | all | Queeg |
e12 | 2 | Thomson ST2020 SIP phone in blue room |
e13+ | 2 | Main hackspace network |
e15 | N | Do Not Use |
e16 | 3 | Instrumentation projects |
g1 | all | Collective |
g2 | 2 | Gigabit switch on Blue room table |
g3 | 1,2,3,5 | Dell PowerConnect 2724 |
g4 | all | other switch (FS728TP or FS728TS) |
Dell PowerConnect 2724
The Dell switch is in the members storage room, just above collective. It is connected to the Netgear FS728TP and to most of the Studio network sockets.
Port | VLAN | Comments |
---|---|---|
e1-e23 | 2 | Main hackspace network |
e24 | 1,2,3,5 | Netgear FS728TP |
Server Naming
See here for our naming convention
Network Devices
Able
Able is Kryten's brother the BT Openreach VDSL modem that talks to the outside world.
Kryten
Kryten is VM on Collective running pfSense, it handles all our DHCP and routing from the external world.
It is connected to VLAN 4 for access to Able, and 2 for the main hackspace network.
The Nottinghack VLAN has access to local resources - e.g. a samba file-share on JARVIS, a future local dropbox server for projects & collaborations, a backup of all Web / Wiki files (to allow a remote restore in the event of moving hosts / outage of services) and anything else we don't want to be web facing.
The VPN (when enabled) would allow remote management of the VLANS, which could come in handy in the event of issues with the client WiFi access point.
Router management username & password for Authorised members only. If there something you need changing ask on the google group or speak to 'RepRap' Matt or Daniel directly
Usual rules apply, as to any tool - if you don't know how to use it / don't do anything :)
OpenVPN
Not currently running and not for member access
Kryten runs our openVPN server for access to the hackspace network from the outside world.
For more details see the VPN page
WiFi
There are three WiFi networks:
HSNOTTS
WiFi for Hackspace SSID: HSNOTTS passcode uses WPA2 protocol AES encryption. Members only, passcode on request, changes to the passcode will be emailed to members only.
HSNOTTS_GUEST
WiFi for guests is setup as HSNOTTS_GUEST and passcode can be provided and this will (possibly at some point) run on a separate VLAN.
spacenet
Cross-hackspace wireless network, using WPA2 Enterprise. Login using:
Username: <HMS-username>@nottinghack.org.uk
Password: <HMS-password>
For more details, see spacenet.
Servers
Holly
See Holly
Collective
See Collective
Andromeda
See Andromeda
Joshua
Joshua loves to play games, Tic Tac Toe, Chess, Global Thermonuclear War... all the family favourites.
We've co-opted him into running Quake II, Open Arena, Unreal Tournament & Counter Strike 1.5.
The aim is to have a games server running games suitable for clients running low powered netbooks & laptops. This allows us to run LAN parties & have more people join in, without having to bring gaming rigs from home. Also QII & Open Arena have open source install paths available, with Unreal & Counter Strike available at low cost.
Joshua is running Windows XP Pro on a 1GHz PIII with 512MB RAM & a RIVA TNT2 graphics card.
Impressive I know.
There are 2 user accounts -
"David" - not password protected, but limited access - suitable for web browsing / printing etc.
"Falken" - admin account - speak to Tony_S if you need the password.
Genral Use PC
Quorra
A workstation with dual heads, Quorra is available for all members to use.
WOPR
Another general-use PC in the blue room, by the window
Printers
For more details, see Printers.
Bender
The HP Color Laserjet HP5550 is set up on 10.0.0.95 as Bender.
The printer feeds A4 paper from tray 2 and A3 paper from tray 3.
A duplexer is installed enabling double-sided printing.
Bender is shared on JARVIS, so should be auto-detected by Linux machines.
Rosey
An Epson WF-7610DWF printer/scanner set up on 10.0.0.94. The scanner/printer should be auto-detected by most Linux/Mac machines, and is known to work from Quorra using Xsane.
Plotter
HP DesignJet 600 Not networked, but connected via serial or parallel interface to quorra
Websites
Nottinghack.org.uk
The main Nottinghack websites are run form Andromeda.
This hosts the Wordpress blog, this wiki, the Nottinghack Planet
The Twitterbot for @HSNOTTS is also hosted on on this server.
lspace.nottinghack.org.uk
Hosted locally at the space on Holly
Includes:
- Hackspace Management System - see HMS
- Graph showing connected network device count
DNS record looked after by 'RepRap' Matt
cacti.nottinghack.org.uk
Also hosted locally on Holly this provides graphing of various stats and info (mostly temperature graphs) from the hackspace instrumentation
http://holly/
Our intranet, only accessible from the hackspace network
HackSpace Instrumentation
The Network and Holly provide the backbone to our HackSpace Instrumentation projects.
Other Info
ADSL Connection Reboot Procedure
If for some reason the internet connection is not responding!
Then Able is located on the Internet shelf on the Members Storage room
On Able check if the 'DSL' and 'Internet' lights are green
If not on then reboot Able by cycling power using the power switch on the back,
If two minutes after doing this the 'DSL' light does not come back on then you need to get in touch with either 'RepRap' Matt or Daniel who can check on Kryten
If there's still no look, it could well be an outside issue with talktalk.
Extra Equipment
See here for a list of our other network gear
Subcategories
This category has the following 3 subcategories, out of 3 total.
Pages in category "Network"
The following 63 pages are in this category, out of 63 total.
B
D
F
H
K
N
- Network
- Team:Network and Servers
- Team:Network and Servers/Costings
- Team:Network and Servers/Maintenance
- Network/Equipment
- Network/Naming
- Network/Nottinghack CA
- Network/Patch Panel A
- Network/Patch Panel B
- Network/Patch Panel C
- Network/Patch Panel D
- Network/Patch Panel E
- Network/Patch Panel W
- Network/VPN
- Nh-holly
- Nhtools
Q
S
V
W
Media in category "Network"
The following 5 files are in this category, out of 5 total.
-
Hackspace network 26-02.jpg 1,686 × 1,177; 286 KB
-
Patch Panel AC Mapping.png 4,038 × 1,774; 912 KB
-
Patch Panel B Mapping.png 1,710 × 612; 113 KB
-
Patch Panel D Mapping.png 1,817 × 1,325; 223 KB
-
Upstairs Members Storage Network.jpeg 4,032 × 3,024; 2.12 MB